PT-2025-51132 · Tenda · Tenda Ax9

Iot_Res

·

Published

2025-12-13

·

Updated

2025-12-18

·

CVE-2025-14636

CVSS v3.1
3.7
VectorAV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Tenda AX9 version 22.03.01.46
Description A security flaw exists in the
image check
function within the
httpd
component of Tenda AX9 version 22.03.01.46. This issue involves the use of a weak hash, allowing for remote attacks. The attack is considered to have a high complexity level and is difficult to exploit. The exploit for this issue has been publicly released and may be used for malicious purposes.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Use of a Broken Cryptographic Algorithm

Weakness Enumeration

Related Identifiers

CVE-2025-14636

Affected Products

Tenda Ax9